Verschlüsselungsfehler unter Android 4.2

Der folgende Code funktioniert auf allen Versionen von Android mit Ausnahme der neuesten Version 4.2


import javax.crypto.BadPaddingException;
import javax.crypto.Cipher;
import javax.crypto.IllegalBlockSizeException;
import javax.crypto.KeyGenerator;
import javax.crypto.NoSuchPaddingException;
import javax.crypto.SecretKey;
import javax.crypto.spec.SecretKeySpec;

 * Util class to perform encryption/decryption over strings. <br/>
public final class UtilsEncryption
    /** The logging TAG */
    private static final String TAG = UtilsEncryption.class.getName();

    /** */
    private static final String KEY = "some_encryption_key";

     * Avoid instantiation. <br/>
    private UtilsEncryption()

    /** The HEX characters */
    private final static String HEX = "0123456789ABCDEF";

     * Encrypt a given string. <br/>
     * @param the string to encrypt
     * @return the encrypted string in HEX
    public static String encrypt( String cleartext )
            byte[] result = process( Cipher.ENCRYPT_MODE, cleartext.getBytes() );
            return toHex( result );
        catch ( Exception e )
            System.out.println( TAG + ":encrypt:" + e.getMessage() );
        return null;

     * Decrypt a HEX encrypted string. <br/>
     * @param the HEX string to decrypt
     * @return the decrypted string
    public static String decrypt( String encrypted )
            byte[] enc = fromHex( encrypted );
            byte[] result = process( Cipher.DECRYPT_MODE, enc );
            return new String( result );
        catch ( Exception e )
            System.out.println( TAG + ":decrypt:" + e.getMessage() );
        return null;

     * Get the raw encryption key. <br/>
     * @param the seed key
     * @return the raw key
     * @throws NoSuchAlgorithmException
    private static byte[] getRawKey()
        throws NoSuchAlgorithmException
        KeyGenerator kgen = KeyGenerator.getInstance( "AES" );
        SecureRandom sr = SecureRandom.getInstance( "SHA1PRNG" );
        sr.setSeed( KEY.getBytes() );
        kgen.init( 128, sr );
        SecretKey skey = kgen.generateKey();
        return skey.getEncoded();

     * Process the given input with the provided mode. <br/>
     * @param the cipher mode
     * @param the value to process
     * @return the processed value as byte[]
     * @throws InvalidKeyException
     * @throws IllegalBlockSizeException
     * @throws BadPaddingException
     * @throws NoSuchAlgorithmException
     * @throws NoSuchPaddingException
    private static byte[] process( int mode, byte[] value )
        throws InvalidKeyException, IllegalBlockSizeException, BadPaddingException,     NoSuchAlgorithmException,
        SecretKeySpec skeySpec = new SecretKeySpec( getRawKey(), "AES" );
        Cipher cipher = Cipher.getInstance( "AES" );
        cipher.init( mode, skeySpec );
        byte[] encrypted = cipher.doFinal( value );
        return encrypted;

     * Decode an HEX encoded string into a byte[]. <br/>
     * @param the HEX string value
     * @return the decoded byte[]
    protected static byte[] fromHex( String value )
        int len = value.length() / 2;
        byte[] result = new byte[len];
        for ( int i = 0; i < len; i++ )
            result[i] = Integer.valueOf( value.substring( 2 * i, 2 * i + 2 ), 16     ).byteValue();
        return result;

     * Encode a byte[] into an HEX string. <br/>
     * @param the byte[] value
     * @return the HEX encoded string
    protected static String toHex( byte[] value )
        if ( value == null )
            return "";
        StringBuffer result = new StringBuffer( 2 * value.length );
        for ( int i = 0; i < value.length; i++ )
            byte b = value[i];

            result.append( HEX.charAt( ( b >> 4 ) & 0x0f ) );
            result.append( HEX.charAt( b & 0x0f ) );
        return result.toString();

Hier ist ein kleiner Unit-Test, den ich erstellt habe, um den Fehler zu reproduzieren

import junit.framework.TestCase;

public class UtilsEncryptionTest
    extends TestCase
    /** A random string */
    private static String ORIGINAL = "some string to test";

     * The HEX value corresponds to ORIGINAL. <br/>
     * If you change ORIGINAL, calculate the new value on one of this sites:
     * <ul>
     * <li></li>
     * <li></li>
     * <li></li>
     * </ul>
    private static String HEX = "736F6D6520737472696E6720746F2074657374";

    public void testToHex()
         String hexString = UtilsEncryption.toHex( ORIGINAL.getBytes() );

         assertNotNull( "The HEX string should not be null", hexString );
         assertTrue( "The HEX string should not be empty", hexString.length() > 0 );
         assertEquals( "The HEX string was not encoded correctly", HEX, hexString );

    public void testFromHex()
         byte[] stringBytes = UtilsEncryption.fromHex( HEX );

         assertNotNull( "The HEX string should not be null", stringBytes );
        assertTrue( "The HEX string should not be empty", stringBytes.length > 0 );
        assertEquals( "The HEX string was not encoded correctly", ORIGINAL, new String( stringBytes ) );

    public void testWholeProcess()
         String encrypted = UtilsEncryption.encrypt( ORIGINAL );
         assertNotNull( "The encrypted result should not be null", encrypted );
         assertTrue( "The encrypted result should not be empty", encrypted.length() > 0 );

         String decrypted = UtilsEncryption.decrypt( encrypted );
         assertNotNull( "The decrypted result should not be null", decrypted );
         assertTrue( "The decrypted result should not be empty", decrypted.length() > 0 );

         assertEquals( "Something went wrong", ORIGINAL, decrypted );


Die Zeile, die die Ausnahme auslöst, lautet:

byte[] encrypted = cipher.doFinal( value );

Der vollständige Stack-Trace lautet:

    W/<package>.UtilsEncryption:decrypt(16414): pad block corrupted
    W/System.err(16414): javax.crypto.BadPaddingException: pad block corrupted
    W/System.err(16414):    at
    W/System.err(16414):    at javax.crypto.Cipher.doFinal(
    W/System.err(16414):    at <package>.UtilsEncryption.process(
    W/System.err(16414):    at <package>.UtilsEncryption.decrypt(
    W/System.err(16414):    at <package>.UtilsEncryptionTest.testWholeProcess(
    W/System.err(16414):    at java.lang.reflect.Method.invokeNative(Native Method)
    W/System.err(16414):    at java.lang.reflect.Method.invoke(
    W/System.err(16414):    at junit.framework.TestCase.runTest(
    W/System.err(16414):    at junit.framework.TestCase.runBare(
    W/System.err(16414):    at junit.framework.TestResult$1.protect(
    W/System.err(16414):    at junit.framework.TestResult.runProtected(
D/elapsed (  588): 14808
    W/System.err(16414):    at
    W/System.err(16414):    at
    W/System.err(16414):    at android.test.AndroidTestRunner.runTest(
    W/System.err(16414):    at android.test.AndroidTestRunner.runTest(
    W/System.err(16414):    at android.test.InstrumentationTestRunner.onStart(
    W/System.err(16414):    at$

Hat jemand eine Ahnung, was passieren könnte? Ist jemandem bekannt, dass sich in einer der Klassen, auf die verwiesen wird, eine Änderung für Android 4.2 vollzogen hat?

Danke vielmals

Antworten auf die Frage(3)

Ihre Antwort auf die Frage